Cisco Switches :: Configuring SG-300 28 From Both Web And CLI Interfaces?
Dec 8, 2012
I have been configuring the SG-300 28 from both web and cli interfaces.When doing a sh run I get Int gi2 before int Gi1? WTF?Also one of my vlans wasn't working on interfaces but was working through the assigned trunk port to my other switch.I deleted it and recreated it and it is now working. Why we have a failure and go to reconfigure a switch and have these same issues.
I'm having some trouble configuring porting between interfaces.Here is my situation.I have a Cisco 891 router. What I need is to create 3 interfaces with the next IPs:
1. Port FastEthernet 8 - 20.40.1.1 - with a modem connected directly to it - 20.40.1.2 2. Port GigabitEthernet 0 - 193.2.5.100 - connected to a switch - LAN 3. Ports FastEthernet 0 and 1 for two VOIP phones - 190.168.5.2 and 190.168.5.3 - will be switchported to VLAN 10 - 190.168.5.1
I can send ping from a PC (193.2.5.1) to the modem interface (20.40.1.1) but not to the modem itself (20.40.1.2).I played days with configurations and tried a lot of variation of ip routing and access-lists with no success.Basically I need to comunicate freely betwin all the devices.There are a lot of forums providing solutions to a same problems but they seems not working with the 891 router. Any way, assuming I have a factory resetted router? [code]
configuring my Cisco 2951 router. There are three routed interfaces that I need to configure: one for the internal LAN, the second for another private subnet that connects to a Data Centre and the third for the WAN connection. I have configured the Ge0/0 interface as the LAN interface with the internal network 10.17.0.0/24. I have also configured my WAN interface Ge0/1 for internet connectivity. Now, I need to configure the third interface Ge0/2 that will connect to the Data Centre. This will be a private point to point switched ethernet link. The Data Centre will host a secondary domain controlller. So, I want it to be on the same network as the internal LAN, i.e., 10.17.0.0/24. I want to be able to see all other devices that will be located at the Data Centre just like I would see all devices connected to the internal LAN.The problem I am facing is that Cisco 2951 does not allow me to configure two routed interfaces to be on the same subnet. Is there any way to work around this problem and configure both the internal LAN and the Data Centre private network to be on the same subnet.
I have managed to simulate to Cisco ASA's on GNS3 - ASA1 and ASA2. ASA2 is configured as multiple mode to enable contexts while ASA2 has been configured as single mode.
On ASA2 I can assign an IP address to its gigabitethernet interfaces as normal, however I'm unable to assign an interface to the gigabitethernet interfaces on ASA1.
I have a 2960S switch and nine (9) 300 switches. I have three VLANs configured on them, data, voice and management. Each 300 has unique data and ovice VLANs corresponding to their locations. All of the 300 switches connect to the 2960 in a hub and spoke network topology via 802.1q trunks. I can access devices between switches on the data and voice VLANs fine from any other switch. My issue is that from any 300 switch I can access the 2960 management VLAN interface without a problem, but I can not access the 300 switch management VLAN that I am connected to from the CLI. I do not use the GUI at all for management.
I set up a VLAN interface (VLAN 3) with an IP-address and I can connect to it using telnet and log in to the switch as admin.I call this my management interface.
How come I manage to log into the management interface when the native VLAN is default 1? I thought the native VLAN determines which VLAN I need to log into to access the switch?
Can I make management interfaces of all the 48 ports if I want?
I've noticed that a couple of switches are complaining about duplex mismatches on trunk interfaces. When I took a closer look, two switches (switches 1 & 3) are reporting that they have a duplex mismatch to a device connected to a downstream switch (switch 2). Basic topology is switch 2 has a 1G fiber link to both switch 1 & 3.
we have two ASA 5510 connected in failover, and a pair of cisco 2960s switch connected in stack. Currently one interface of primary ASA is terminated on switch1 and a interface from standby is connected to switch2 as Inside, and switch1 and switch2 are in stack. for redundancy purpose i want to use multiple interfaces of ASA for inside , so first i thought to use etherchannel , but it has a limitation that , it cannot be terminated on stack switch(as per cisco document [URL]
So my question is :
1. can we use redundant interface feature where 2 physical interfaces combined to a redundant interface (eg interface redundant 1) for inside redundancy purpose.
2. Can these ports from primary/standby ASA terminated on stack switches (2960s), will this work (if the switch with active port goes down, will the other port take over in the redundant interface with the other switch).
I have two switches (sanitized configs attached) and I am trying to bond int gi0/1 and gi0/2 between the two. Then I need int gi0/3 back to the main LAN switches. These are new Vlans created 982 and 983 for these switches. Question #1: do the configurations look correct? I haven't placed any laptops on the interfaces to test interconnectivity yet but I am wondering if it will work with no default routes.
The admin team needs these switches at location A for setup then they will be moved to Location B. The only thing that sucks for me is that the network admin before me created gateway interfaces for all the local Vlans on a main router as sub interfaces. For example, for these two subnets, I need to create subinterfaces below (at location A), which is why a gave the Vlan on the switches, ip addresses.
interface GigabitEthernet0/0.982 encapsulation dot1Q 982 ip address 10.98.2.1 255.255.255.0 ip flow ingress no cdp enable service-policy input mark-mplsqos-in
interface GigabitEthernet0/0.983 encapsulation dot1Q 983 ip address 10.98.3.1 255.255.255.0 ip flow ingress no cdp enable service-policy input mark-mplsqos-in
When I move the subnet to location B, I will also move the gateway. These two switches will be used mainly for a VMWare and HyperVisor environment so Vlan 982 is for VMA network and Vlan 983 is for management. The admin tells me the software needs to tag the packets, I am not sure if I care as the switches should handle that also.
I am looking for a Best Practices or a few places to pay attention to in the Cisco ESW-520-48P switch I have. My VoIP solution is RingCentral, and while they are Cisco phones, I've been hestitant to setup VLANs etc. the way I am used to. Plus setting up Auto QoS seems different than what I am used to with a 3750 switch.
Right now I've left the Smartports Wizard alone, and none of the ports are configured. There are no VLANs or QoS on the LAN currently.
What I was running into were calls cutting out where one side wouldn't hear the other anymore, but the call would remain connected. However, this has happened in this small 15 person office, when there is only one employee here after hours, talking on the phone. There isn't any heavy network traffic, because I have network monitoring showing me low usage (no streaming music, videos, or anything else).
This switch has a Gb connection to a Linksys SR2024 (the server switch), which is also set at Factory Defaults. I mention that because I recently bypassed the ESW-520-48P, and plugged one phone into that switch and the RingCentral phone worked fine for outside calls.
Is there something besides QoS that I should look at in the ESW-520 switch that might be causing a checkpoint of some sort, or interrupting VoIP traffic that I need to configure or disable?
And are there any Best Practices or scenario guides for this switch? I found the Admin Guide, but it really just explains every option in the GUI for the switch. And it seems all of my CCNA training isn't working with going in and quickly troubleshooting this switch besides knowing that something in it could be hanging it up.
Configuring OSPFv2 on a Nexus 5K switches, after configuring area 0 or area 10 it shows as 0.0.0.0 or 0.0.0.10 instead, I'm planning to uplink a couple of ASAs with OSPF enabled, just wondering if the area format showing will be a problem, is this how is supposed to look in the Nexus 5K? and will the 5K be able to form adjacensies with other non-Nexus devices that have area 0 and 10?
configuring 802.1x authentication on ACS 5.1.0.44 & Catalyst 2960S switches.All the documents i have found seem to have incorrect screen shots or missing steps.I have found a doc external to Cisco [URL]however this just hangs when attempting to complete the task in figure G.The other docs are for configuring IBNS & assume that 802.1x is already configured.
It seems that I can add a pool for any subnet except the 192.168.1.1/24. I have successfully added a pool for 192.168.0.1/24, 172.16.16.1/24, etc. But when I use the same commands to add a 192.168.1.1/24 pool, I get:
sw(config)#ip dhcp pool network Device sw(config-dhcp)#address low 192.168.1.20 high 192.168.1.250 255.255.255.0 Illegal IP addresses range or subnet configuration Trying to configure a network pool on default IP interface
VLAN 1 IP was changed from default 192.168.1.254 to a static of 192.168.0.1.
If you have two wireless routers on the same private network. On configuring the second router's password and SSID I know the second wireless routers DHCP must be turned off.Can you explain step by step on configuring the second wireless. Must the second wireless be connected to the internet. If yes, how? Must I take the first wireless router off the modem and connect it to the second wireless router for internet connection. (Problem with that is connection from the ISP)
Configuring HP switches for Flexconnect. I am not sure if or not its doable? Access Points are 2600 and 3600 with 5508 as a controller. Idea is to keep the branch traffic local but the switches are HP.
I've been conducting research on configuring 3 distribution switches in my network which are Cisco Catalyst 4507's to communicate with our core over layer 3. Our core switch which is already configured at Layer 3 for intervlan routing is a Cisco Catalyst 6509.
I've got the configuration portion complete and all devices are able to communicate my only question is about QoS. Do I have to configure QoS at the layer 3 interfaces for voice, if so how is that completed. We have several vlans and separate the vlans for each building by voice and data. We only configure ports on the access switches with voice vlans for QoS and we use the auto qos option on these interfaces.
I am following instructions I found to set up my wirelss network, but am having trouble configuring my router. I'm specifically at a standstill, because I can't connect to http://192.168.1.1. I pinged the router and got a response and went to run/ip config to confirm I have the right URL for the router, but still not able to get to the URL.
I have 7 POE switches that have ESI IP phones attached. I have two VLANS, 1 and 2. VLAN 2 is used for voice and is defined in each switch.The ESI IP phones connect to my POE switch ports and the pc attaches through the ESI IP phone.
I have had voice quality issue between floors in my building. Talking to others on my floor via the IP phone, there are no voice quality issues. [code]
I'm trying to configure intervlan routing between a cisco 2801 router and HP/Amer switches. Using int fa0/1 and subinterfaces I was sure I had it configured correctly, but I cannot ping the default gateways when I place a host in a particular vlan. Below is what I have configured.
HP switch - port 9 connects to fa0/1 on 2801 ip default-gateway 10.1.100.1 trunk 9 Trk1 trunk trunk 10 Trk2 trunk - to another switch
I've got router as vpn-concentrator which receives vpn site-to-site connections from 10 branches with cisco 881 and cisco 1941.I started cacti monitoring and found out that there are too many errors on interfaces.URL.
I have an ASA connected to 2 ISPs.I am using object tracking for the default route so only 1 path is used at a time. I have a L2L VPN setup going out interface A. I would like to configure a 2nd VPN going out interface B with identical parameters.
(ASA software 8.2)
crypto map PATH_A 1 match address outside_1_cryptomap crypto map PATH_A 1 set peer 10.1.1.1 crypto map PATH_A 1 set transform-set ESP-AES-128-SHA crypto map PATH_A 1 set security-association lifetime seconds 28800 crypto map PATH_A 1 set security-association lifetime kilobytes 4608000 crypto map PATH_A 1 set reverse-route
We are using non-advertised IPs on many devices, but LMS is attempting to ping these addresses and setting off all sorts of security alarms. How to stop LMS 4.1 from pinging the interfaces? We don't even want LMS to do any fault monitoring so if that could be turned off, it would be even better.
I am trying to secure sub interfaces on a 2600 Router
interface FA0/1.1 No Access-group
Interface FA0/1.2 IP Access-group 110 out
Access-list 110 deny ip 2.2.2.0 0.0.0.255 1.1.1.0 0.0.0.255 Access-list 110 permit ip any any
This works but it blocks traffic both ways I only want to block one, I dont want FA0/1.2 to be able to access FA0/1.1 but I want all traffic to be allowed to go the other way
Does any know why the ASA will monitor physical interfaces by default, but monitoring of logical interfaces is disabled by default? Or better yet, is anybody doing a monitor-interface for a subint without issue? I'd imagine it isn't enabled by default for a reason.
I understand that IPv6 uses the MAC address of a LAN interface to make up the EUI-64 of a serial interface since serial interfaces don't have MACs. What happens when there is no LAN interface available? What if the switch has only serial interface cards?
LMS 4.2. I am receiving the alert below in my email inbox. It was my understanding that DFM would not send alerts for interfaces that are shut down. Is this a bug? [code]
I have a question, it is possible to have two WAN interfaces to configure a cisco 892 router with an ip 255.255.240.0 84.197.167.111 adderess of the first interface and a different ip address 84.197.174.182 255.255.240.0 on the second interface
I have a location where I have 2 WAN links, but without a dynamic routing protocol in between. I want to implement a kind of hub to 2 spokes VPN. But the spokes will actualy be on one single ASA firewall, each spoke on a different interface. One hub-spoke will be primary, the other one the secondary. When the WAN link for the primary VPN fails the secondary should be started on the hub to the other spoke.
I'm trying to get two Cisco 1941 routers with HWIC-1T and HWIC-3G-HSPA interfaces to use the 3G interfaces if the frame is down (as it is right now).In the lab, I was not able to get these to use the 3G interfaces as a backup (i.e. backup interface cell 0/1/0) and I've not been able to workout the correct incantation for static routing either.
kununurra#show ip int br d1 Interface IP-Address OK? Method Status Protocol Dialer1 172.31.2.94 YES IPCP up up